0.0

CVE-2026-39699 - WordPress AI Workflow Automation plugin <= 1.4.2 - Broken Access Control vulnerability

Missing Authorization vulnerability in massiveshift AI Workflow Automation ai-workflow-automation-lite allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects AI Workflow Automation: from n/a through <= 1.4.2.

πŸ“… Published: April 8, 2026, 8:30 a.m. πŸ”„ Last Modified: April 8, 2026, 7:27 p.m.

5.3

CVSS3.1

CVE-2026-39698 - WordPress The Publisher Desk ads.txt plugin <= 1.5.0 - Broken Access Control vulnerability

Missing Authorization vulnerability in PublisherDesk The Publisher Desk ads.txt the-publisher-desk-ads-txt allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects The Publisher Desk ads.txt: from n/a through <= 1.5.0.

πŸ“… Published: April 8, 2026, 8:30 a.m. πŸ”„ Last Modified: April 8, 2026, 7:27 p.m.

0.0

CVE-2026-39697 - WordPress MAIO – The new AI GEO / SEO tool plugin <= 6.2.8 - Broken Access Control vulnerability

Missing Authorization vulnerability in HBSS Technologies MAIO &#8211; The new AI GEO / SEO tool maio-the-new-ai-geo-seo-tool allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects MAIO &#8211; The new AI GEO / SEO tool: from n/a through <= 6.2.8.

πŸ“… Published: April 8, 2026, 8:30 a.m. πŸ”„ Last Modified: April 8, 2026, 7:27 p.m.

6.5

CVSS3.1

CVE-2026-39696 - WordPress Elfsight WhatsApp Chat CC plugin <= 1.2.0 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Elfsight Elfsight WhatsApp Chat CC elfsight-whatsapp-chat allows DOM-Based XSS.This issue affects Elfsight WhatsApp Chat CC: from n/a through <= 1.2.0.

πŸ“… Published: April 8, 2026, 8:30 a.m. πŸ”„ Last Modified: April 8, 2026, 7:27 p.m.

0.0

CVE-2026-39695 - WordPress Podigee plugin <= 1.4.0 - Server Side Request Forgery (SSRF) vulnerability

Server-Side Request Forgery (SSRF) vulnerability in podigee Podigee podigee allows Server Side Request Forgery.This issue affects Podigee: from n/a through <= 1.4.0.

πŸ“… Published: April 8, 2026, 8:30 a.m. πŸ”„ Last Modified: April 8, 2026, 7:27 p.m.

5.3

CVSS3.1

CVE-2026-39694 - WordPress Simply Schedule Appointments plugin <= 1.6.10.2 - Broken Access Control vulnerability

Missing Authorization vulnerability in NSquared Simply Schedule Appointments simply-schedule-appointments allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Simply Schedule Appointments: from n/a through <= 1.6.10.2.

πŸ“… Published: April 8, 2026, 8:30 a.m. πŸ”„ Last Modified: April 8, 2026, 7:27 p.m.

0.0

CVE-2026-39693 - WordPress FSM Custom Featured Image Caption plugin <= 1.25.1 - Cross Site Scripting (XSS) vulnerabi…

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in fesomia FSM Custom Featured Image Caption fsm-custom-featured-image-caption allows DOM-Based XSS.This issue affects FSM Custom Featured Image Caption: from n/a through <= 1.25.1.

πŸ“… Published: April 8, 2026, 8:30 a.m. πŸ”„ Last Modified: April 8, 2026, 7:27 p.m.

6.5

CVSS3.1

CVE-2026-39692 - WordPress tagDiv Composer plugin <= 5.4.3 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in tagDiv tagDiv Composer td-composer allows Stored XSS.This issue affects tagDiv Composer: from n/a through <= 5.4.3.

πŸ“… Published: April 8, 2026, 8:30 a.m. πŸ”„ Last Modified: April 8, 2026, 7:27 p.m.

0.0

CVE-2026-39691 - WordPress Cryptocurrency Donation Box – Bitcoin & Crypto Donations plugin <= 2.2.13 - Broken Access…

Missing Authorization vulnerability in AdAstraCrypto Cryptocurrency Donation Box – Bitcoin & Crypto Donations cryptocurrency-donation-box allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Cryptocurrency Donation Box – Bitcoin & Crypto Donations: from n/a thr…

πŸ“… Published: April 8, 2026, 8:30 a.m. πŸ”„ Last Modified: April 8, 2026, 7:27 p.m.

5.3

CVSS3.1

CVE-2026-39690 - WordPress Author Avatars List/Block plugin <= 2.1.25 - Broken Access Control vulnerability

Missing Authorization vulnerability in Paul Bearne Author Avatars List/Block author-avatars allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Author Avatars List/Block: from n/a through <= 2.1.25.

πŸ“… Published: April 8, 2026, 8:30 a.m. πŸ”„ Last Modified: April 8, 2026, 7:40 p.m.
Total resulsts: 344055
Page 87 of 34,406
Β« previous page Β» next page
Filters